Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Benoît Chenal

#43244of 56,330
6.5Total CVSS
Vulnerabilities · 1
PT-2019-9148
6.5
2019-04-09
Odoo · Odoo Enterprise · CVE-2018-15631
**Name of the Vulnerable Software and Affected Versions** Odoo Community versions prior to 13.0 Odoo Enterprise versions prior to 13.0 **Description** The issue is related to improper access control in the Discuss App, allowing remote authenticated attackers to send themselves arbitrary files from the database. This can be achieved by sending a crafted RPC request. **Recommendations** For Odoo Community versions prior to 13.0, update to version 13.0 or later to resolve the issue. For Odoo Enterprise versions prior to 13.0, update to version 13.0 or later to resolve the issue.